Ostheimer Child Height Predictor
- <= 1.3
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the Child Height Predictor by Ostheimer WordPress plugin, affecting all versions through 1.3. The vulnerability arises from a lack of nonce verification in the options() function, which manages plugin settings updates. Without proper nonce validation, unauthenticated attackers can manipulate site administrators into submitting forged POST requests that alter plugin settings, such as unit preferences, which are then saved to the database.
Exploitation of this vulnerability allows for unauthorized changes to the plugin's settings, which are persisted in the WordPress database. This could lead to incorrect data being displayed or used within the site, depending on the nature of the changed settings.
To reproduce this vulnerability, an attacker can create a link or a page that, when clicked or visited by an administrator, sends a forged POST request to update the Child Height Predictor plugin's settings. The request can be crafted to change preferences such as measurement units, exploiting the absence of nonce verification to bypass normal security checks.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.